Critical
|
4 Dec 2022 |
12 Mar 2024 |
CPAI-2022-0967
|
|
CVE-2022-25445 CVE-2022-25446 CVE-2022-25447 CVE-2022-25448 CVE-2022-25449 CVE-2022-25452 CVE-2022-25453 CVE-2022-25456 CVE-2022-25458 CVE-2023-24166
|
Tenda AC6 Stack Overflow (CVE-2022-25445; CVE-2022-25446; CVE-2022-25447; CVE-2022-25448; CVE-2022-25449; CVE-2022-25452; CVE-2022-25453; CVE-2022-25456; CVE-2022-25458; CVE-2023-24166)
|
High
|
13 Jun 2022 |
28 Feb 2024 |
CPAI-2022-0315
|
|
|
Null Byte HTTP Encodings
|
Critical
|
13 Nov 2022 |
26 Feb 2024 |
CPAI-2022-0820
|
|
CVE-2022-37149 CVE-2023-38861
|
Wavlink WL-WN575A3 Command Injection (CVE-2022-37149; CVE-2023-38861)
|
Critical
|
4 Apr 2022 |
25 Feb 2024 |
CPAI-2022-0086
|
|
CVE-2022-24995 CVE-2023-24212
|
Tenda AX3 Buffer Overflow (CVE-2022-24995; CVE-2023-24212)
|
Critical
|
4 Dec 2022 |
11 Feb 2024 |
CPAI-2022-0949
|
|
CVE-2022-23178
|
Crestron HD-MD4X2-4K-E Authentication Bypass (CVE-2022-23178)
|
Critical
|
23 Feb 2022 |
11 Feb 2024 |
CPAI-2021-1066
|
|
CVE-2021-21975
|
VMware Multiple Products Server Side Request Forgery (CVE-2021-21975)
|
High
|
10 May 2022 |
11 Feb 2024 |
CPAI-2022-0235
|
Microsoft CVE-2022-29104
|
CVE-2022-29104
|
Microsoft Windows Print Spooler Elevation of Privilege (CVE-2022-29104)
|
High
|
13 Nov 2022 |
8 Feb 2024 |
CPAI-2021-1341
|
|
CVE-2021-39144 CVE-2022-31678
|
XStream Insecure Deserialization (CVE-2021-39144; CVE-2022-31678)
|
Critical
|
7 Nov 2022 |
28 Jan 2024 |
CPAI-2022-0790
|
|
CVE-2022-37070 CVE-2023-33629
|
H3C Routers Command Injection (CVE-2022-37070; CVE-2023-33629)
|
High
|
6 Nov 2022 |
28 Jan 2024 |
CPAI-2022-0782
|
|
CVE-2022-33891
|
Apache Spark UI Command Injection (CVE-2022-33891)
|
High
|
16 Jan 2022 |
28 Jan 2024 |
CPAI-2021-0952
|
|
CVE-2021-21224
|
Google Chrome Remote Code Execution (CVE-2021-21224)
|
Critical
|
17 Feb 2022 |
22 Jan 2024 |
CPAI-2022-0042
|
|
CVE-2022-22536
|
SAP Multiple Products Remote Code Execution (CVE-2022-22536)
|
Critical
|
30 Aug 2022 |
21 Jan 2024 |
CPAI-2022-0516
|
|
CVE-2022-31656
|
VMware Multiple Products Authentication Bypass (CVE-2022-31656)
|
High
|
24 Nov 2022 |
15 Jan 2024 |
CPAI-2021-1381
|
|
CVE-2021-21924 CVE-2021-21925 CVE-2021-21926 CVE-2021-21927 CVE-2021-21928 CVE-2021-21929 CVE-2021-21930 CVE-2021-21931 CVE-2021-21932 CVE-2021-21933 CVE-2021-21934 CVE-2021-21935 CVE-2021-21936 CVE-2021-21937
|
Advantech R-SeeNet SQL Injection (CVE-2021-21924; CVE-2021-21925; CVE-2021-21926; CVE-2021-21927; CVE-2021-21928; CVE-2021-21929; CVE-2021-21930; CVE-2021-21931; CVE-2021-21932; CVE-2021-21933; CVE-2021-21934; CVE-2021-21935; CVE-2021-21936; CVE-2021-21937)
|
Critical
|
18 Sep 2022 |
15 Jan 2024 |
CPAI-2020-3589
|
|
CVE-2020-35846 CVE-2020-35847 CVE-2020-35848
|
Agentejo Cockpit NoSQL Injection (CVE-2020-35846; CVE-2020-35847; CVE-2020-35848)
|
Medium
|
30 May 2022 |
11 Jan 2024 |
CPAI-2019-2530
|
|
CVE-2019-8451
|
Atlassian Jira Server-Side Request Forgery (CVE-2019-8451)
|
High
|
27 Apr 2022 |
11 Jan 2024 |
CPAI-2021-1165
|
|
CVE-2021-42278 CVE-2021-42287
|
Microsoft Windows Active Directory Privilege Escalation (CVE-2021-42278; CVE-2021-42287)
|
Critical
|
20 Dec 2022 |
4 Jan 2024 |
CPAI-2022-1085
|
|
CVE-2022-41352
|
Zimbra Collaboration Arbitrary File Upload (CVE-2022-41352)
|
Critical
|
17 Apr 2022 |
4 Jan 2024 |
CPAI-2021-1113
|
|
CVE-2021-20016
|
SonicWall SSLVPN SMA100 Authentication Bypass (CVE-2021-20016)
|
High
|
20 Jul 2022 |
3 Jan 2024 |
CPAI-2022-0339
|
|
CVE-2022-23642
|
Sourcegraph Command Injection (CVE-2022-23642)
|
Critical
|
24 Nov 2022 |
1 Jan 2024 |
CPAI-2022-0704
|
|
CVE-2022-24637
|
Open Web Analytics Authentication Bypass (CVE-2022-24637)
|
High
|
9 Jun 2022 |
1 Jan 2024 |
CPAI-2021-1187
|
|
CVE-2021-20039
|
SonicWall SMA 100 Command Injection (CVE-2021-20039)
|
Critical
|
21 Nov 2022 |
28 Dec 2023 |
CPAI-2022-0897
|
|
CVE-2022-37061
|
FLIR AX8 Thermal Camera Command Injection (CVE-2022-37061)
|
Critical
|
19 Apr 2022 |
26 Dec 2023 |
CPAI-2022-0109
|
|
CVE-2022-26318
|
Watchguard Fireware Remote Code Execution (CVE-2022-26318)
|
Medium
|
22 Dec 2022 |
25 Dec 2023 |
CPAI-2018-2223
|
|
CVE-2018-13383
|
Fortinet FortiOS SSL VPN Heap Buffer Overflow (CVE-2018-13383)
|
Critical
|
6 Jun 2022 |
17 Dec 2023 |
CPAI-2022-0297
|
|
CVE-2022-26134
|
Atlassian Confluence Remote Code Execution (CVE-2022-26134)
|
Critical
|
19 May 2022 |
13 Dec 2023 |
CPAI-2022-0251
|
|
CVE-2022-30525
|
Zyxel USG Command Injection (CVE-2022-30525)
|
High
|
18 Oct 2022 |
30 Nov 2023 |
CPAI-2020-3601
|
|
CVE-2020-28948
|
PEAR Archive Tar Insecure Deserialization Code Execution (CVE-2020-28948)
|
High
|
31 Oct 2022 |
28 Nov 2023 |
CPAI-2022-0775
|
|
CVE-2022-24288
|
Apache Airflow Command Injection (CVE-2022-24288)
|
High
|
26 May 2022 |
23 Nov 2023 |
CPAI-2018-1803
|
|
CVE-2018-17553
|
Naviwebs Navigate CMS Arbitrary File Upload (CVE-2018-17553)
|
Critical
|
1 Jun 2022 |
21 Nov 2023 |
CPAI-2022-0283
|
|
CVE-2022-30190
|
Microsoft Support Diagnostic Tool Remote Code Execution (CVE-2022-30190)
|
Critical
|
27 Apr 2022 |
15 Nov 2023 |
CPAI-2022-0206
|
|
CVE-2022-22954
|
VMware Workspace Remote Code Execution (CVE-2022-22954)
|
High
|
2 Feb 2022 |
13 Nov 2023 |
CPAI-2021-1058
|
|
CVE-2021-21315
|
Node.JS System Information Command Injection (CVE-2021-21315)
|
Critical
|
22 Nov 2022 |
2 Nov 2023 |
CPAI-2022-0886
|
|
CVE-2022-28575 CVE-2022-28577 CVE-2022-28578 CVE-2022-28579 CVE-2022-28580 CVE-2022-28581 CVE-2022-28582 CVE-2022-28583 CVE-2022-28584 CVE-2023-24236 CVE-2023-24238 CVE-2023-24276 CVE-2023-25395 CVE-2023-26848
|
TOTOLINK A7100RU Router Command Injection (CVE-2022-28575; CVE-2022-28577; CVE-2022-28578; CVE-2022-28579; CVE-2022-28580; CVE-2022-28581; CVE-2022-28582; CVE-2022-28583; CVE-2022-28584; CVE-2023-24236; CVE-2023-24238; CVE-2023-24276; CVE-2023-25395; CVE-2023-26848)
|
Critical
|
25 Dec 2022 |
1 Nov 2023 |
CPAI-2018-2218
|
|
CVE-2018-13353 CVE-2018-13354 CVE-2018-13418 CVE-2020-35665 CVE-2021-45836 CVE-2021-45837 CVE-2021-45840 CVE-2022-24989
|
TerraMaster TOS Command Injection (CVE-2018-13353; CVE-2018-13354; CVE-2018-13418; CVE-2020-35665; CVE-2021-45836; CVE-2021-45837; CVE-2021-45840; CVE-2022-24989)
|
Critical
|
3 Nov 2022 |
30 Oct 2023 |
CPAI-2022-0794
|
|
CVE-2022-23221
|
H2 Database Remote Code Execution (CVE-2022-23221)
|
High
|
29 Dec 2022 |
29 Oct 2023 |
CPAI-2022-1111
|
|
CVE-2022-22719
|
Apache httpd Denial of Service (CVE-2022-22719)
|
Medium
|
8 Dec 2022 |
29 Oct 2023 |
CPAI-2021-1474
|
|
CVE-2021-28125
|
Apache Superset Open Redirect (CVE-2021-28125)
|
Medium
|
3 Jan 2022 |
29 Oct 2023 |
CPAI-2021-1011
|
|
CVE-2021-44832
|
Apache Log4j2 Remote Code Execution (CVE-2021-44832)
|
High
|
14 Nov 2022 |
26 Oct 2023 |
CPAI-2021-1359
|
|
CVE-2021-43319
|
Zoho ManageEngine Command Injection (CVE-2021-43319)
|
Critical
|
3 Apr 2022 |
26 Oct 2023 |
CPAI-2018-1799
|
|
CVE-2018-14839
|
LG N1A1 Command Injection (CVE-2018-14839)
|
Critical
|
2 May 2022 |
24 Oct 2023 |
CPAI-2022-0208
|
|
CVE-2022-27115
|
Studio-42 elFinder Remote Code Execution (CVE-2022-27115)
|
Critical
|
13 Jun 2022 |
22 Oct 2023 |
CPAI-2022-0295
|
|
CVE-2022-29303 CVE-2022-40881
|
Contec SolarView Compact Command Injection (CVE-2022-29303; CVE-2022-40881)
|
Critical
|
11 Apr 2022 |
22 Oct 2023 |
CPAI-2021-1156
|
|
CVE-2021-45382
|
D-Link Routers Command Injection (CVE-2021-45382)
|
Critical
|
13 Apr 2022 |
22 Oct 2023 |
CPAI-2017-1220
|
|
CVE-2017-6316
|
Citrix NetScaler SD-WAN Command Injection (CVE-2017-6316)
|
High
|
16 Aug 2022 |
12 Oct 2023 |
CPAI-2022-0515
|
|
CVE-2022-27925 CVE-2022-37042
|
Zimbra Collaboration Directory Traversal (CVE-2022-27925; CVE-2022-37042)
|
Critical
|
17 Nov 2022 |
26 Sep 2023 |
CPAI-2018-2149
|
|
CVE-2018-7890
|
Zoho ManageEngine ApplicationManager Command Injection (CVE-2018-7890)
|
High
|
14 Dec 2022 |
26 Sep 2023 |
CPAI-2018-2142
|
|
CVE-2018-16873
|
Golang Go Remote Code Execution (CVE-2018-16873)
|
Medium
|
24 Oct 2022 |
26 Sep 2023 |
CPAI-2018-2130
|
|
CVE-2018-15706
|
Advantech WebAccess Directory Traversal (CVE-2018-15706)
|
Critical
|
24 Oct 2022 |
26 Sep 2023 |
CPAI-2017-1530
|
|
CVE-2017-14803
|
NetIQ Access Manager Directory Traversal (CVE-2017-14803)
|